CyberSecurityTechnologies
We have been working for YOU for more than 8 years!!! https://t.me/+9vdG4JOSgY8xMzdi See also: https://t.me/Cognitive_Security https://t.me/CyberSecurityOSINT https://t.me/Wireless_Cybersecurity For All Questions: in messages to the channel
Show moreπ Analytical overview of Telegram channel CyberSecurityTechnologies
Channel CyberSecurityTechnologies in the English language segment is an active participant. Currently, the community unites 35 182 subscribers, ranking 3 768 in the Technologies & Applications category and 998 in the USA region.
π Audience metrics and dynamics
Since its creation on Π½Π΅Π²ΡΠ΄ΠΎΠΌΠΎ, the project has demonstrated rapid growth, gathering an audience of 35 182 subscribers.
According to the latest data from 24 July, 2026, the channel demonstrates stable activity. Although there has been a change in the number of participants by -444 over the last 30 days and by -17 over the last 24 hours, overall reach remains high.
- Verification status: Not verified
- Engagement rate (ER): The average audience engagement rate is 6.67%. Within the first 24 hours after publication, content typically collects 2.98% reactions from the total number of subscribers.
- Post reach: On average, each post receives 2 348 views. Within the first day, a publication typically gains 1 050 views.
- Reactions and interaction: The audience actively supports content: the average number of reactions per post is 10.
- Thematic interests: Content is focused on key topics such as cve-2025, attack, threat, detection, llm.
π Description and content policy
The author describes the resource as a platform for expressing subjective opinions:
βWe have been working for YOU for more than 8 years!!!
https://t.me/+9vdG4JOSgY8xMzdi
See also:
https://t.me/Cognitive_Security
https://t.me/CyberSecurityOSINT
https://t.me/Wireless_Cybersecurity
For All Questions: in messages to the channelβ
Thanks to the high frequency of updates (latest data received on 25 July, 2026), the channel maintains relevance and a high level of publication reach. Analytics show that the audience actively interacts with content, making it an important point of influence in the Technologies & Applications category.
Data loading in progress...
| Date | Subscriber Growth | Mentions | Channels | |
| 25 July | 0 | |||
| 24 July | 0 | |||
| 23 July | 0 | |||
| 22 July | +1 | |||
| 21 July | 0 | |||
| 20 July | +1 | |||
| 19 July | 0 | |||
| 18 July | 0 | |||
| 17 July | 0 | |||
| 16 July | 0 | |||
| 15 July | 0 | |||
| 14 July | 0 | |||
| 13 July | 0 | |||
| 12 July | 0 | |||
| 11 July | 0 | |||
| 10 July | 0 | |||
| 09 July | 0 | |||
| 08 July | 0 | |||
| 07 July | +1 | |||
| 06 July | +1 | |||
| 05 July | +1 | |||
| 04 July | 0 | |||
| 03 July | +1 | |||
| 02 July | 0 | |||
| 01 July | 0 |
| 2 | #Research
#WebApp_Security
"Mohabi: Disaggregating and Sandboxing the Firefox JavaScript Engine", USENIX 2026.
]-> repo
// Mohabi is a fork of Firefox with a fully sandboxed JavaScript engine | 409 |
| 3 | #tools
#Sec_code_review
"VSIM: Semantics-Aware Value Extraction for Efficient Binary Code Similarity Analysis", Feb. 2026.
]-> source code of VSIM, scripts, and datasets
// VSIM - framework that systematically captures values computed from register and memory operations, filters out semantically irrelevant values, and normalizes and propagates the remaining values to enable robust and scalable similarity analysis | 907 |
| 4 | #Analytics
"Assessment of Zaiβs GLM-5.2",
CAISI NIST, July 8, 2026.
// GLM-5.2 was released as an open-weight model by the PRC-based company Z-ai on June 16, 2026. GLM-5.2 the most capable open-weight AI model when it was released. All safety indicators are presented in the report | 1 006 |
| 5 | #tools
#OSINT
1β£Β SERF - Agentic Semantic Entity Resolution Framework
https://github.com/Graphlet-AI/serf
2β£Β Estorides - OSINT aggregator and correlation engine inspired by Palantir, Bellingcat, Maltego, and Citizen Lab workflows
https://github.com/grisuno/estorides
3β£Β DeepDive - Autonomous OSINT Investigation Tool
https://github.com/Sinndarkblade/deepdive
4β£Β Semantica - Graph-Native Infrastructure for Context and Accountable AI Systems. The Open Source Palantir for AI Agents
https://github.com/semantica-agi/semantica | 1 220 |
| 6 | #Research
#MLSecOps
"HijackKV: New Threat in Position-Independent KV Cache Reuse", USENIX Security 2026.
]-> runnable code for HijackKV attack and for re-evaluating saved attack results with different KV-cache recomputation methods | 1 340 |
| 7 | #DevOps
#Tech_book
#Cloud_Security
#Blue_Team_Techniques
"Logs and Telemetry using Fluent Bit, Kubernetes, streaming and more", 2025.
]-> code, configurations, test data, and utilities
]-> utility for creating log files, designed to help test Fluentd configuration files | 1 274 |
| 8 | #AIOps
#DevOps
#MLSecOps
"Theyβll Verify. They Just Wonβt Act. How Authority Framing and Laundered Code Turn a Trusted Agentic CI/CD Pipeline Into an Attack Surface", Jul 2026.
]-> Dataset and reproduction code
// Prompt secrecy and distributed verification are not security controls: a trusted agentic pipeline shipped attacker-specified secret exfiltration because an authority claim made verifiers rubber-stamp code whose malice they could see, while content controls were blind to it.. | 1 437 |
| 9 | #tools
#OpSec
#Research
GDID: The Windows Global Device Identifier
https://zerotracelab.com/blog/gdid-windows-tracking
]-> GDID Extractor PoC | 1 562 |
| 10 | #reversing
#Hardware_Security
"Reverse Engineering a Ledger Nano X Hardware Implant", hardwear io USA, 2026.
]-> Firmware + Video
// reverse engineering process of a real-world hardware implant discovered inside of a Ledger Nano X cryptocurrency hardware wallet | 1 505 |
| 11 | #Malware_analysis
#Threat_Research
1β£ Unpacking "Cruciferra":
An Analysis of a Sophisticated Crypter Service
https://www.proofpoint.com/us/blog/threat-insight/unpacking-cruciferra-analysis-sophisticated-crypter-service
2β£ MuddyWater:
ClickFix to Telegram & PatchAgent Backdoor
https://ransom-isac.com/blog/muddywater-clickfix-patchagent
3β£ SolidPDFCreator - Mustang Panda Stage-1 Backdoor
https://kienmanowar.wordpress.com/2026/07/13/quicknote-solidpdfcreator-mustang-panda-stage-1-backdoor-target-india
4β£ Inside Pegasus: The evolution of the world's most notorious spyware system
https://securitylab.amnesty.org/latest/2026/07/inside-pegasus-the-evolution-of-the-worlds-most-notorious-spyware
5β£ New Project CAV3RN module abuses Outlook calendar events for C2 and DNS AAAA records for configuration recovery
https://securelist.com/project-cav3rn-cyberespionage-framework-using-outlook-and-dns/120757 | 1 328 |
| 12 | #DFIR
#Cyber_Education
#Blue_Team_Techniques
Timestamp Audit Checklist, v.1, 2026.
// The Timestamp Audit Checklist is a practical log analysis tool for security practitioners who need to verify their environment's time infrastructure is accurate, consistent, and defensible. Missing UTC offsets, outdated DST rulesets, undocumented SIEM normalization, and unmonitored NTP drift are among the most common silent failures in incident response and digital forensics investigations | 1 434 |
| 13 | #tools
#Offensive_security
#Red_Team_Tactics
"Astral Projection: Advanced Module Stomping", Apr. 2026.
]-> source code of the UDRL
// one-way of doing module stomping that is pretty ideal to avoid most of the IOCs that youβd have with the normal module stomping | 1 522 |
| 14 | #Offensive_security
#Red_Team_Tactics
Exploring cross-domain & cross-forest RBCD
Part 1 - Exploring cross-forest RBCD
Part 2 - Recursive S4U2Self[+U2U] / S4U2Proxy implementation | 1 796 |
| 15 | #SCA
#MLSecOps
"ShadowPickle: Evading Machine Learning Model Scanners via Stealthy Pickle Deserialization Attacks",
Jul 2026.
// novel attacks against PTMs and model hubs called SHADOWPICKLE. SHADOWPICKLE includes three stealthy pickle deserialization attacks that enable malicious behaviors and evade SOTA model scanners. These attacks leverage the external module import mechanism of the Pickle Virtual Machine to execute malicious payloads during deserialization | 1 623 |
| 16 | #exploit
#Kernel_Security
1β£ CVE-2026-36425:
OPSWAT AppRemover Arbitrary Process Termination
https://github.com/redteamfortress/CVE-2026-36425
2β£ CVE-2026-31694:
Unprivileged root via an out-of-bounds write in the FUSE readdir cache
https://cyberstan.co.uk/fuse-readdir-oob
// Disclaimer | 1 676 |
| 17 | #AIOps
#reversing
"Automatically Attacking Software Reverse Engineering AI Agents", May 2026.
// The paper demonstrates that LLM-based reverse engineering tools (e.g., tool-using systems built around Ghidra) can be deceived through adversarial prompt injections, highlighting new cybersecurity vulnerabilities | 1 965 |
| 18 | #AppSec
#Threat_Research
1β£ OpenSSL HollowByte: A DoS Hiding in 11 Bytes
https://sec.okta.com/articles/2026/06/openssl-hollowbtye-a-dos-hiding-in-11-bytes
2β£ Windows AppResolver LPE:
From AppContainer to SYSTEM
https://davidcarliez.github.io/blog/windows-appresolver-lpe-to-system
// PoC for an AppResolver authorization issue fixed in the July 2026 Windows security update and investigated in connection with CVE-2026-50454, a Windows User Interface Core EoP vulnerability
3β£ wp2shell - Code Trace Deep Dive
https://blog.zsec.uk/wp2shell-code-trace-deep-dive
// wp2shell carries two CVEs (so far); CVE-2026-63030 & CVE-2026-60137 | 1 736 |
| 19 | #CogSec
#Analytics
"Benchmarking Free-Tier Large Language Models as Cognitive Aids for Operationalizing Unstructured Cyber Threat Intelligence", June 2026.
// Modern SOCs face a deepening burnout crisis; 44% of cybersecurity practitioners report experiencing severe work-related stress and burnout. This exhaustion is increasingly driven by the cognitive demands of operationalizing a relentless stream of incoming threat data - particularly the verbose, unstructured CTI reports, vendor advisories, and incident post-mortems. This paper hypothesizes that deploying accessible, free-tier, single-agent LLMs strictly as Human-in-the-Loop "cognitive aids" can effectively automate the initial intake and operationalization of unstructured CTI, achieving a minimum 80% Human-Aligned Mitigation Score | 1 841 |
| 20 | 1β£ RedLine Stealer
https://www.vmray.com/the-redline-thread-that-led-to-a-maritime-bec-infrastructure-cluster
2β£ HelloNet campaign - new malicious modules launched through the ViPNet update system
https://securelist.com/tr/hellonet-vipnet/120700
3β£ DinDoor, DenoRAT, and NightshadeC2: Analyzing TAG-150's Evolving Tradecraft
https://www.esentire.com/blog/dindoor-denorat-and-nightshadec2-analyzing-tag-150s-evolving-tradecraft
4β£ Operation Capsule Vault: RokRAT Attack Chain Analysis Using EMBED_PAYLOAD_v2
https://www.genians.co.kr/en/blog/threat_intelligence/rokrat_capsule_vault
5β£ OkoBot malware framework
https://securelist.com/okobot-framework-targets-cryptocurrency-wallets/120660 | 1 805 |
